<<

arXiv:math/0701882v1 [math.NT] 30 Jan 2007 ojcue1.1. Conjecture conjecture. following the suggest heuristics Simple o o ayprimes many how for hnteeaefiieymn primes many finitely are there Then ope utpiain eetees u anrsl sta Conject that is result For main average. on our holds Nevertheless, least multiplication. complex eesrs equations Weierstrass erea most at degree E a as oa oso rm ihprobability with prime torsion local uhrwsspotdb S rn DMS-0440708. grant NSF by supported was author xli hshuitcfor heuristic this explain eunewt naayi fetnincasssget htwhen that suggests classes extension of analysis an with sequence cly o oeelpi uvsoehas one curves elliptic some for ically, litccurve elliptic oa oso rmsfor primes torsion local hoe 1.2. Theorem hs ae,tecnetr (for conjecture the cases, these a fgo euto for reduction good of prime p p ( ( osse on forder of point a possesses eepc hscnetr ob as frsffiinl large sufficiently (for false be to conjecture this expect We Let h rtato a atal upre yaNECIndividua NSERC a by supported partially was author first The u ro sesnilyapeievrino h ersi lue oab to alluded heuristic the of version precise a essentially is proof Our eepcal ieti ersi sec ftetoprssmtmsfail. sometimes parts two the of each as heuristic this like especially We x EOMTO HOYO AOSREPRESENTATIONS GALOIS OF THEORY DEFORMATION E E ∞ → oocrwt rbblt of probability a with occur to 1 = ) isi nitra flnt prxmtl 4 approximately length of interval an in lies ) for E OA OSO NELPI UVSADTHE AND CURVES ELLIPTIC ON TORSION LOCAL ea litccreover curve elliptic an be . E if E E d and Fix ( with Q suethat Assume p d > x )[ E p ≥ y E p HNA AI N O WESTON TOM AND DAVID CHANTAL ] 2 ( E 1 K .Oese aiyta o oa oso prime torsion local a for that easily sees One 0. 6= ,let 0, h litccurve elliptic the d n uthave must one = ec h conjecture. the hence , Assume . )[ ;i hscs esyta prime a that say we case this in 1; = ,B> B A, x # p p 3 ] S + π vra xeso of extension an over 0 6= 1 A,B E 1. E d d X Q ax ( p )flosimdaey utemr,frCM for Furthermore, immediately. follows 1) = osnthv ope utpiain Fix multiplication. complex have not does x . u rmr oli hsppri oinvestigate to is paper this in goal primary Our . Introduction ,let 0, E eoetenme fprimes of number the denote ) + ,B A, 4 p p 1 ∈S X √ obnn hs siae,oeexpects one estimates, these Combining . 1 b uhta hr xssa extension an exists there that such a A,B p with p 1 S a 4 ( ≥ · √ E p 1 A,B π 1 p ( E p o nyfiieymn rms in primes; many finitely only for 1 = ) x E E d oprsno h euto exact reduction the of comparison A . < ,b a, 4 7 ( .B h imn hypothesis, Riemann the By 1. = ) osse a possesses eoetesto litccre with curves elliptic of set the denote + x ∞ ) ε ∈ ≪ o some for √ Z Q d p , 2 p ota avl n expects one naively that so , | a fdge tmost at degree of ≤ | eerhGat h second the Grant; Research l p > ε ai on forder of point -adic A d and when ) 0 p Then . a sa is p | p b ( ≤ | ≤ E E oa torsion local 1, = ) x r . at 1.1 ure B oshave does uhthat such d K/ v.We ove. o an For . . Specif- d Q p p ≥ p ≥ sa is 1 of p 7 . . 2 CHANTALDAVIDANDTOMWESTON elliptic curves one finds that ap(E) = 1 in fact forces p to be a local torsion prime; this explains the CM exception in the conjecture. Although we believe that Conjecture 1.1 is of fundamental and independent interest in the arithmetic of elliptic curves, our motivation for its study originated in questions in the deformation theory of Galois representations. For any prime p let

ρ¯E,p : Gal(QS p /Q) GL2(Fp) ∪{ } → be the Galois representation on the p-torsion points of E; here QS p is the maxi- mal extension of Q unramified away from p and the set S of places∪{ of bad} reduction for E. Whenρ ¯E,p is absolutely irreducible, one can associate toρ ¯E,p its universal univ deformation ring RE,p , parameterizing all lifts ofρ ¯E,p to artinian local rings with residue field Fp. Mazur [10] asked if the deformation theory ofρ ¯E,p is unobstructed univ (so that RE,p is non-canonically isomorphic to a power series ring in three variables over Zp) for all but finitely many primes p. Using work of Flach [4], he showed that this is the case so long as one excludes those primes p such that E possesses a point of order p over a quadratic extension of Qp. Theorem 1.2 with d = 2 thus guarantees that this last condition holds, on average, for only finitely many primes p. Unfortunately, we can not state a deformation theoretic analogue of Theorem 1.2, as the other reasons for obstructions do not satisfy as strong of a bound. Neverthe- less, we do show that Mazur’s question has an affirmative answer for elliptic curves admitting rational 2-isogenies (which is basically trivial) or 15-isogenies (which is an amusing computation). n For another application, recall that the newform fE := an(E)q associated to E is said to possess a companion form modulo p if there is a mod p eigenform g = b qn of weight p 1 satisfying P n − 2 P n bn nan (mod p) ≡ for all n 1. For d 1, let πcf(x) denote the number of primes p x such that ≥ ≥ E ≤ ap(E) equals 1 and fE possesses a companion form modulo p. Using a deep result of Gross [5], Theorem± 1.2 yields the following.

7 + Theorem 1.3. Assume A, B x 4 ε for some ε> 0. Then ≥ 1 cf 2 πE (x) d # A,B ≪ E A,B S ∈SX as x . → ∞ It would be interesting to remove the assumption that ap(E) = 1 above, al- though it is not immediately clear to the authors how to adapt these± methods to that question. We present some data and simple results on Conjecture 1.1 in the case d = 1 in Section 2. In Section 3, we show that over the unramified extension of Qp of degree 1 d, residual p-torsion points lift to p-adic p-torsion points with a frequency of pd . In Section 4 we use this result and analytic methods to deduce Theorem 1.2. Finally, in Section 5 we discuss the applications to deformation theory and companion forms.

Acknowledgments. The authors would like to thank Hershy Kisilevsky, Siman Wong and Hui June Zhu for useful discussions during the preparation of this paper. LOCAL TORSION ON ELLIPTIC CURVES 3

2. Local torsion primes Fix an E over Q. We call a prime p a local torsion prime for E if E possesses a point of order p over Qp. For x> 0 let πE (x) denote the number of local torsion primes p x for E. Using the Magma Computational Algebra System 6 ≤ we computed πE(10 ) for the 5113 elliptic curves E with conductor at most 1000. (Note that πE is not isogeny-invariant, so that these computations were done over isomorphism classes rather than isogeny classes.)

6 #E such that πE(10 )= Curves # curves 0 1 2 345+ All curves 5113 568 3687 828 15 1 14 Curves with no torsion 1364 484 733 117 15 1 14

The 14 curves E with π (106) 5 were all CM curves and had between 22 E ≥ and 36 local torsion primes in this range. (In fact, they all had CM by Q(√ 3), although this presumably is an artifact of the small conductors we considered.)− Thus only one elliptic curve without complex multiplication and conductor at most 1000 had as many as four local torsion primes less than one million: the elliptic curve 774D1, for which 2, 3, 5, 7 are local torsion primes. We remark that the precise ratios reported here should not be taken too seriously, as elliptic curves of small conductor are not at all representative of all elliptic curves. Nevertheless, this data certainly supports Conjecture 1.1. Indeed, large local torsion primes p were quite rare: 99.1% of the local torsion primes occurring were 2, 3, 5, 7. The only two elliptic curves in this sample with local torsion primes > 1000 were 131A1 (with local torsion primes 59 and 4723) and 775A1 (with local torsion prime 26993). We now record some simple results on local torsion primes. Although some of the proofs rely on results in the next section, we find it most convenient to state them here. Proposition 2.1. Let E be an elliptic curve over Q.

(1) If E(Q)tors = 0, then E has finitely many local torsion primes. (More 6 precisely, if E(Q)tors =0, then any prime p 7 of good reduction for E is 6 ≥ not a local torsion prime for E unless E(Q)tors ∼= Z/p.) (2) For any finite set of primes , there exists an elliptic curve E such that each element of is a local torsionP prime for E. (3) If E has complexP multiplication, then a prime p> 3 of good reduction is a local torsion prime for E if and only if ap(E)=1. Proof. (1) Suppose that p 7 is a local torsion prime of E at which E has good ≥ reduction. Since p 3, the formal group of E over Zp is torsion-free, so that the natural map≥

E(Q )tors E(F ) p → p is injective. In particular, p divides #E(F ); since p 7, it now fol- p ≥ lows from the Riemann hypothesis that E(Fp) must have exactly p ele- ments. Since E(Q)tors is non-trivial and injects into E(Fp), we conclude that E(Q)tors ∼= Z/p, as desired. 4 CHANTALDAVIDANDTOMWESTON

(2) For each p , fix ap,bp Fp so that the elliptic curve Eap,bp with ∈ P 2 3 ∈ Weierstrass equation y = x +apx+bp has precisely p points over Fp. (The existence of such a curve is guaranteed by Deuring’s Theorem which gives an exact formula for the number of elliptic curves over F with p +1 r p − points for r 2√p; see for example [8] for a statement of Deuring’s | | ≤ 2 2 Theorem.) Let (Ap,Bp) Z/p Z/p be one of the pairs lifting (ap,bp) ∈ × 2 in Corollary 3.5. Let A, B Z be such that A Ap (mod p ), B Bp (mod p2) for all p . Then∈ by Corollary 3.5 each≡ p is a local torsion≡ ∈P ∈P prime for EA,B. (3) This is clear from Lemma 3.2 as a CM elliptic curve is a canonical lift of each of its reductions. Alternately, it follows from the fact that for an ordinary prime p the mod p Galois representation of a CM elliptic curve is abelian when restricted to a decomposition group at p. 

3. Local torsion on elliptic curves

Fix a prime p> 3 and a finite extension k of Fp of degree d. Let W denote the ring of Witt vectors over k; we write K for the field of fractions of W . Note that 2 k = W/pW ; we set W2 = W/p W . Let E be an elliptic curve over W ; that is, E is an elliptic curve over K with good reduction. The next lemma gives a criterion for E to possess a K-rational point of order p. For a finite abelian group M we write rankp M for the p-rank of M (that is, for the Fp-dimension of M Z Fp or equivalently of the p-torsion subgroup M[p]). ⊗ Lemma 3.1. Let E be an elliptic curve over W . Then: d if E(K)[p]=0; rankp E(W2)= d +1 if E(K)[p] =0. ( 6 Proof. Consider the diagram (with exact rows) / / / / 0 / E0(pW ) / E(K) / E(k) / 0

  / 2 / / / 0 / E0(pW/p ) / E(W2) / E(k) / 0 with E0 the formal group of E over K . Since W is unramified over Zp, it follows O 2 from [11, Theorem IV.6.4b] that the reduction map E0(pW ) E0(pW/p ) can be d d → identified with the natural map Zp (Z/p) . In particular, taking p-torsion and applying the snake lemma we obtain→ a commutative diagram / / / / 0 / 0 / E(K)[p] / E(k)[p] / (Z/p)d

  / d / / / d 0 / (Z/p) / E(W2)[p] / E(k)[p] / (Z/p) It follows that

rankp E(W2)= d + rankp E(K)[p]. LOCAL TORSION ON ELLIPTIC CURVES 5

Since the field K(E[p]) contains K(µp) and thus is ramified over Qp, E(K)[p] it at most one-dimensional and the lemma follows.  We fix now an elliptic curve E over k such that E(k)[p] = 0. We first determine 6 how many lifts of E to W2 have p-rank d + 1. Lemma 3.2. Let E be an elliptic curve over k such that E(k) has a non-trivial p-torsion point. Then precisely one of the pd isomorphism classes of lifts of E to an elliptic curve E˜ over W2 satisfies rankp E˜(W2)= d +1. Proof. Since E is necessarily ordinary, there is a canonical exact sequence of finite flat group schemes 0 µ E[p] Z/p 0 → p → → → over k¯. In fact, since E(k) has a point of order p, it follows that this exact sequence exists already over k and is split; that is, E[p] ∼= µp Z/p as k-group schemes. By the Serre–Tate theorem (see [6, Theorem 1.2.1],× for example), the lifts of E to elliptic curves over W2 are parameterized by the lifts of the p-divisible group E[p∞] to a p-divisible group over W2. Any such lift is an extension of Qp/Zp by µp∞ , so that these lifts correspond to elements of 1 n lim Ext (Z/p ,µpn ) ←−n where the extensions are computed in the category of finite flat group schemes over W2. It is equivalent to compute these extensions under the flat topology, so that 1 n 1 pn d Ext (Z/p ,µ n ) = H (Spec W2,µ n ) = W ×/W × = p W2 = (Z/p) . p ∼ fl p ∼ 2 2 ∼ · ∼ Therefore the natural map 1 n 1 (1) lim Ext (Z/p ,µ n ) Ext (Z/p,µ ) p → p ←−n is an isomorphism, and these groups have order pd. In particular, this proves that d E has precisely p isomorphism classes of lifts to W2. Let E˜ be a lift of E to W2. One sees immediately from the proof of Lemma 3.1 that E˜(W2) has p-rank d + 1 if and only if the canonical exact sequence 0 µ E˜[p] Z/p 0 → p → → → splits. By (1), this occurs for precisely one lift E˜, as claimed. (This lift is usually called the canonical lift of E to W2.)  Remark 3.3. We note that it follows from the above proof that the isomorphism class of an elliptic curve over W2 is determined by its j-invariant and the isomor- phism class of its reduction to k. This fact can certainly be proven in for more elementary ways.

For a,b elements of some ring R, we write Ea,b for the projective with affine Weierstrass equation y2 = x3 + ax + b. The next lemma applies Lemma 3.2 to obtain a lifting result for these cubics.

Proposition 3.4. Let Ea,b be an elliptic curve over k such that j(Ea,b) =0, 1728. 6 d Assume that Ea,b(k) has an element of order p. Then there are exactly p distinct pairs (A ,B ) W2 W2 such that (A ,B ) (a,b) mod p and i i ∈ × i i ≡

rankp EAi,Bi (W2)= d +1. 6 CHANTALDAVIDANDTOMWESTON

3 Proof. Consider the closed subscheme S of AW2 (with coordinates j, A, B) defined by the j-invariant equation A3 j = 6912 . · 4A3 + 27B2

The surface S W2 k is smooth away from j =0, 1728, so that it follows from Hensel’s × d d lemma that for each of the p lifts ˜j of j(Ea,b) to W2, there are precisely p lifts of (a,b) to W2 W2 such that the corresponding elliptic curve over W2 has j-invariant × d ˜j. In particular, each of the p possible j-invariants lifting j(E) to W2 occurs for d some E with (A, B) W2 W2. Since by Lemma 3.2 there are precisely p A,B ∈ × isomorphism classes of lifts of Ea,b to W2, it follows that the isomorphism class of a lift of E is determined by its j-invariant. (Alternately, since the twists of an 1 elliptic curve E over a ring R are parameterized by Hfl(Spec R, Aut E) and one has p ∤ # Aut Ea,b since p 5, one can deduce this from the fact that the categories of ´etale sheaves on Spec k≥and Spec W are equivalent.) In particular, each isomorphism class occurs for precisely pd values of A, B. By Lemma 3.2 precisely one of these isomorphism classes has p-rank d + 1, which yields the proposition. 

For our analytic arguments we will be interested only in elliptic curves over Zp. In this case Proposition 3.4 yields the following. Corollary 3.5. Let E be an ordinary elliptic curve over F such that j(E ) = a,b p a,b 6 0, 1728. Let k be an extension of Fp of degree d such that E(k)[p] = 0; set W2 = W/p2 with W the ring of Witt vectors of k. Then there are exactly p6 distinct pairs (A ,B ) Z/p2 Z/p2 such that (A ,B ) (a,b) mod p and i i ∈ × i i ≡

rankp EAi,Bi (W2)= d +1. 2 Proof. The canonical lift of Ea,b to W2 has j-invariant in Z/p . Thus by Hensel’s lemma as before there are precisely p pairs lying in Z/p2 Z/p2 among the pd pairs of Proposition 3.4. The corollary follows. × 

4. Analytic arguments

Fix d 1 and as before let W2 denote the Witt vectors of length two over a finite field≥k of order pd. Definition 4.1. We write ν (d) for the number of pairs (a,b) Z/p2 Z/p2 such p ∈ × that Ea,b is an elliptic curve with rankp Ea,b(W2)= d + 1. The following estimates will be used in our main result. Lemma 4.2. We have ν (p) dx7/2 log x; d ≪ p x X≤ ν (p) d dx3/2 log x; p2 ≪ p x X≤ ν (p) d d. p4 ≪ p x X≤ LOCAL TORSION ON ELLIPTIC CURVES 7

0 1728 0 Proof. Write νd(p) = νd′ (p) + νd (p) + νd (p) where νd′ (p) (resp. νd (p), resp. 1728 2 2 ν (p)) denotes the number of pairs (a,b) Z/p Z/p such that E (W2) d ∈ × a,b has p-rank d + 1 and Ea,b does not have j-invariant 0 or 1728 (resp. has j-invariant 0, resp. has j-invariant 1728). It suffices to prove the lemma separately for each of these three functions.

We begin with νd′ (p). Since an elliptic curve E over Fp has a point of order p d over Fpd if and only if ap(E) 1 mod p (see Lemma 4.3 below), by Corollary 3.5 we have ≡

d ν′ (p)= p # (a,b) F× F× ; a (E ) 1 mod p d · ∈ p × p p a,b ≡ = p  (p 1)H(r2 4p) · − − r <2√p | |X rd 1 mod p ≡

by Deuring’s theorem; see for example [8]. (Note that restricting to (a,b) F× F× ∈ p × p has eliminated those elliptic curves with j-invariant 0 or 1728.) The class number 2 formula together with the trivial bound L(1,χD) log D yields H(r 4p) 2 ≪ − ≪ √p log p. As (for large enough p) there are at most d such r, it follows that

5/2 2 ν′ (p) dp log p. d ≪ The asserted bounds for νd′ (p) all follow easily from this. 0 2 Consider now νd (p). An elliptic curve E over Z/p with j-invariant 0 is always the canonical lift of its reduction, so that by the proof of Lemma 3.2 it has p-rank d + 1 over W precisely when

d a (E Z 2 F ) 1 (mod p). p × /p p ≡ (Note that in this case Corollary 3.5 does not apply.) Since a curve Ea,b over Fp 2 has j-invariant 0 if and only if b = 0 and each such curve over Fp has p lifts to Z/p2, we obtain

0 2 ν (p)= p # a F×; a (E 0)= r . d · { ∈ p p a, } r <2√p | |X rd 1 mod p ≡ Thus ν0(p) d = χr (p) p2 Ea,0 2 × p x p x r < √p a Fp X≤ X≤ d| |X X∈ r 1 mod p ≡ r where χE(p) is 1 if ap(E)= r and 0 otherwise. Reversing the order of summation, we obtain ν0(p) d = χr (p) p2 Ea,0 p x a x a p x r <2√p X≤ X≤ ≤X≤ | |X rd 1 mod p ≡

d max # p x ; ap(Ea,0)= r . ≪ · r  ≤  a x X≤    8 CHANTALDAVIDANDTOMWESTON

An elementary argument using the description of ap(Ea,0) in terms of the quadratic form X2 + Y 2 shows that

# p x; a (E 0)= r √x ≤ p a, ≪ so that we obtain  ν0(p) d d √x p2 ≪ · p x a x X≤ X≤ dx3/2. ≪ Applying partial summation one now easily obtains ν0(p) d d p4 ≪ p x X≤ ν0(p) dx7/2 d ≪ p x X≤ which suffice for the lemma. An entirely similar argument gives the same bounds 1728  for νd . The next lemma was used in the preceding proof. There are of course many proofs; we give one in the spirit of Section 3. Alternately, one could use the Weil d d d conjectures and look at the p-divisibility of #E(F d )= p +1 (α + β ), where p − p p α ,β are the roots of the characteristic polynomial x2 a (E)x + p over F . p p − p p Lemma 4.3. Let E be an elliptic curve over F . Then E(F d )[p] =0 if and only p p 6 if a (E)d 1 mod p. p ≡ Proof. If ap(E) = 0, then E is supersingular and never has p-torsion over any extension of Fp, so we may assume that ap(E) = 0. In this case, the p-torsion of E decomposes as 6 1 E[p]= Z/p(χ) µ (χ− ) ⊕ p where χ is the character of Gal(F¯ p/Fp) sending a Frobenius to ap(E). (See [5], for example.) Now E(F d )[p] = 0 if and only if χ is trivial on Gal(F¯ /F d ); since this p 6 p p Galois group is generated by the dth power of Frobenius, the lemma follows.  Recall that for an elliptic curve E, πd (x) denotes the number of primes p x E ≤ such that E possesses a point of order p over an extension of Qp of degree at most d. Let πd,ur(x) denote the number of primes p x such that E possesses a point E ≤ of order p over an unramified extension of Qp of degree at most d. Lemma 4.4. Let E be an elliptic curve. Then πd (x) πd,ur(x) E − E is bounded by the number of primes p d. ≤ Proof. Fix a prime p > d and a ramified extension K/Qp of degree at most d. To prove the lemma it suffices to show that if E(K)[p] = 0, then already E(Kur)[p] =0 with Kur the maximal unramified subfield of K. For6 this, recall that the restriction6 of the p-torsion Galois representation of E to a decomposition group at p has the form εχ ∗ 1 0 χ−   LOCAL TORSION ON ELLIPTIC CURVES 9 with ε the cyclotomic character, χ an unramified character and either trivial or ∗ wildly ramified. K is not wildly ramified (since d

Recall that A,B denotes the set of elliptic curves Ea,b with a,b Z and a A, b B. S ∈ | |≤ | |≤ Proposition 4.5. Fix A,B > 0. Then

1 d 2 1 1 3/2 1 7/2 πE (x)= O(d )+ d O + x log x + x log x . # A,B · A B AB E A,B    S ∈SX Proof. By Lemma 4.4 we have

1 d 1 d,ur πE(x)= πE (x)+ d O(1). # A,B # A,B · E A,B E A,B S ∈SX S ∈SX It thus suffices to consider the latter sum. d d Let Kp denote the unramified extension of Qp of degree d and letπ ˜E(x) denote the number of p x such that E(Kd)[p] = 0. By Lemma 3.1, E(Kd)[p] =0 can be ≤ p 6 p 6 detected by looking at E over Z/p2. Since there are

2A 2B + O(1) + O(1) p2 · p2     2 elliptic curves in A,B reducing to any fixed elliptic curve over Z/p , applying Lemma 3.1 and reversingS the order of summation we find that

1 d 1 d π˜E(x)= # E A,B ; E(Kp )[p] =0 # A,B # A,B ∈ S 6 S E A,B S p x ∈SX X≤  1 2A 2B = 2 + O(1) 2 + O(1) νd(p) # A,B p · p p x     S X≤ ν (p) 1 1 ν (p) 1 = d + O + d + ν (p) p4  A B p2 AB d  p x   p x p x X≤ X≤ X≤   since # =4AB(1 + o(1)). SA,B Applying the estimates of Lemma 4.2 and summing over d now yields the result. 

Corollary 4.6. If A, B x7/4+ε, then ≫ 1 d 2 πE(x) d # A,B ≪ E A,B S ∈SX as x . → ∞ 10 CHANTALDAVIDANDTOMWESTON

5. Deformation theory Fix an elliptic curve E over Q without complex multiplication. Let S denote the set of primes at which E has bad reduction. For a prime p consider the Galois representation ρ¯E,p : Gal(QS p /Q) GL2(Fp) ∪{ } → giving the Galois action on the p-torsion points E[p]. A deformation ofρ ¯E,p to a local ring R with residue field Fp is a strict equivalence class of Galois representa- tions Gal(QS p /Q) GL2(R) ∪{ } → which yieldρ ¯E,p on composition with the reduction map

GL2(R) GL2(F ); → p here two Galois representations are considered to be strictly equivalent if they are conjugate by a matrix which reduces to the identity in GL2(Fp). Whenρ ¯E,p is absolutely irreducible (which is true for sufficiently large p) it is known [9, Section 1.2] that there exists a universal deformation univ univ ρE,p : Gal(QS p /Q) GL2(RE,p ) ∪{ } → in the category of inverse limits of artinian local rings with residue field Fp; the univ ring RE,p is called the universal deformation ring ofρ ¯E,p. Thus any deformation univ ofρ ¯E,p to such a ring R is obtained from ρ by composition with a unique map univ RE,p R. → univ It is of fundamental interest to understand the structure of RE,p . Let ad¯ρE,p denote the adjoint representation ofρ ¯E,p and set i di := dimFp H (QS p /Q, adρ ¯E,p). ∪{ } We have the following result of Mazur [9, Section 1.6 and Section 1.10]. univ Proposition 5.1. With notation as above, RE,p is a quotient of a power series ring in d1 variables over Zp by an ideal generated by at most d2 elements. Further- more, one has d1 d2 = 3. In particular, if d2 = 0 (in which case one says that − univ the deformation theory of ρ¯E,p is unobstructed), then RE,p is (non-canonically) isomorphic to a power series ring in three variables over Zp.

In [10], Mazur further asks if the deformation theory ofρ ¯E,p is unobstructed for all but finitely many primes p. (We remark that the analogous question for modular forms of weight at least 3 was answered affirmatively in [13].) Using Poitou–Tate duality and work of Flach [4] on symmetric square Selmer groups, he proved the following result.

Proposition 5.2. Let p be a prime of good reduction for E such that ρ¯E,p is absolutely irreducible. If the deformation theory of ρ¯E,p is obstructed, then one of the following holds: (1) p 3; (2) p ≤ S; (3) ℓ ∈ 1 (mod p) for some ℓ S; ≡ ∈ (4) The Galois representation ρ¯E,p is not surjective; (5) p divides the (appropriately normalized) special value L(Sym2 E, 2)/Ω of the symmetric square L-function of E; LOCAL TORSION ON ELLIPTIC CURVES 11

(6) H0(Q , Sym2 E[p]) =0 for some ℓ S p . ℓ 6 ∈ ∪{ } Furthermore each of these conditions holds for all but finitely many primes p, with 0 2 the possible exception of the vanishing of H (Qp, Sym E[p]) in (6).

0 2 To answer Mazur’s question it thus suffices to show that H (Qp, Sym E[p]) = 0 for all but finitely many p. The next proposition gives some reformulations of this condition.

Proposition 5.3. Let p be an odd prime of good reduction for E. Then the fol- lowing are equivalent: (1) H0(Q , Sym2 E[p]) =0; p 6 (2) ap(E) = 1 and the restriction of ρ¯E,p to a decomposition group at p is semi-simple;± (3) a (E)= 1 and f possesses a companion form modulo p. p ± E If p 7, then these conditions are further equivalent to: ≥ (4) E(K)[p] =0 with K some quadratic extension of Q . 6 p Proof. The equivalence of (1) and (2) is [10, Lemma of p. 172]. The equivalence of (2) and (3) is the main result of [5]. Finally, for the equivalence of (1) and (4) we modify the argument of [1, Lemma 2.3(i)]. It is clear that if x E(K)[p] is 0 2 ∈ non-trivial, then x x gives a non-zero element of H (Qp, Sym E[p]). For the ⊗ 2 converse, suppose that t H0(Q , Sym E[p]) is non-trivial. Let ε denote the ∈ p mod p cyclotomic character. Since p 7 we may choose σ Gal(Q¯ p/Qp) such 4 ≥ ∈ that ε(σ) = 1. Let λ, µ F¯ p be the eigenvalues of σ acting on E[p]. Then the 6 ∈ 2 eigenvalues of σ acting on Sym E[p] are λ2, λµ = ε(σ), and µ2. Since t is fixed by σ, one of these must equal 1; as ε(σ) = 1 we may assume without loss of generality that λ2 = 1. 6 Now consider σ2, which has E[p] eigenvalues λ2 = 1 and ε(σ)2. These eigenvalues are distinct, so we may choose a basis x, y of E[p] with σ2-eigenvalues 1 and ε(σ)2, respectively. Since ε(σ)4 = 1, one computes easily that the σ2-invariant subspace 2 6 of Sym E[p] is spanned by x x. Since t must lie in this subspace, it follows that x x is fixed by all of Gal(Q¯⊗/Q ). Thus Gal(Q¯ /Q ) acts on x by a quadratic ⊗ p p p p character, so that x is defined over a quadratic extension of Qp. 

Combined with Proposition 5.3, Theorem 1.2 immediately yields Theorem 1.3. Furthermore, it shows that the exceptional case in Proposition 5.2 occurs on average finitely often. Unfortunately, already the condition (2) of Proposition 5.2 fails to satisfy such a strong bound, so that we can not state such a result for the deformation theory of E. Nevertheless, for certain elliptic curves one has ap(E) = 1 for finitely many p, so that one can verify Conjecture 1.1 for d = 2 for these curves± and thus settle these questions. More precisely, we have the following. (For an alternate proof of the 15-isogeny case, see [3, Theorem 1.4].)

Proposition 5.4. Let E be an elliptic curve over Q without complex multiplication. Assume that E admits either a rational 2-isogeny or a rational 15-isogeny. Then Conjecture 1.1 holds for E with d = 2. In particular, the deformation theory of ρ¯E,p is unobstructed for all but finitely many primes p. 12 CHANTALDAVIDANDTOMWESTON

Proof. We in fact show that E does not have a point of order p over Fp2 for all but finitely many p. Since for p 7 this occurs if and only if ap(E)= 1, it suffices to show that occurs for only finitely≥ many primes p. ± If E possesses a rational 2-isogeny, then it has rational 2-torsion. Thus in par- ticular E(F )[2] = 0 for all but finitely many primes p. Fix such a p> 2. Then p 6 a (E)= p +1 #E(F ) 0 (mod 2), p − p ≡ so that certainly a (E) = 1, as desired. p 6 ± Now let E be an elliptic curve admitting a 15-isogeny. The X0(15) has four non-cuspidal rational points; as the four elliptic curves in the isogeny class 50A of [2] admit rational 15-isogenies and are distinct over Q¯ , it follows that every elliptic curve admitting a rational 15-isogeny is isogenous to a twist of the curve 50A1. Since isogeny does not change Fourier coefficients and twisting changes them only up to sign (and introducing some zeroes), it suffices to prove the proposition for the elliptic curve 50A1. Let E denote the elliptic curve 50A1; it has Weierstrass equation y2 + xy + y = x3 x 2. − − Then E has the rational 3-torsion points (2, 1), (2, 4) E[3] { − } ∈ and admits a rational 5-isogeny. Thus 1 χ ρ¯E,3 = ∗ ρ¯E,5 = ∗ 1 ∼ 0 ε ∼ 0 εχ−     with ε cyclotomic and χ some Dirichlet character. One finds that E has a 5-torsion point 3 2 3 P = ( ζ ζ 1, ζ 2ζ5 1) − 5 − 5 − − 5 − − th with ζ5 a primitive 5 root of unity. Using this one explicitly computes χ as a Dirichlet character of conductor 5; combined with the knowledge ofρ ¯E,3, we conclude that χ1 ρ¯E,15 = ∗ ∼ 0 χ2   with χ1,χ2 Dirichlet characters of conductor 15 given by

n 1 2 4 7 8 111314 χ1(n) 113413 7 1 7 4 χ2(n) 1 14 1 4 14 11 4 11

In particular, we have

a (E) χ1(p)+ χ2(p) (mod 15) p ≡ for all p 7. Thus ≥ a (E) 0, 2, 5, 6, 11, 12 p ∈{ } modulo 15, so that a (E) = 1 for all p 7, as desired.  p 6 ± ≥ LOCAL TORSION ON ELLIPTIC CURVES 13

References

[1] J. Coates and A. Sydenham, On the symmetric square of a modular elliptic curve, in Elliptic curves, modular forms and Fermat’s last theorem, International Press, 1997. [2] J.E. Cremona, Algorithms for modular elliptic curves, Cambridge University Press, Cam- bridge, 1997. [3] C. David, H. Kisilevsky and F. Pappalardi, Galois representations with non-surjective traces, Canad. J. Math. 51 (1999), 936–951. [4] M. Flach, A finiteness theorem for the symmetric square of an elliptic curve, Invent. Math. 109 (1992), 307–327. [5] B. Gross, A tameness criterion for Galois representations associated to modular forms (mod p), Duke Math. J. 61 (1990), 445–517. [6] N. Katz, Serre–Tate local moduli, in: Surfaces alg´ebriques (Orsay, 1976–78), Lecture Notes in Math. 868, Springer–Verlag, Berlin–New York, 1981. [7] S. Lang and H. Trotter, Frobenius distributions in GL2-extensions of the rational numbers, Lectures Notes in Math. 504, Springer–Verlag, Berlin–New York, 1976. [8] H. Lenstra, Factoring integers with elliptic curves, Annals of Math. 126 (1987), 649–673. [9] B. Mazur, Deforming Galois representations, in: Galois groups over Q (Berkeley, 1987), MSRI Publ. 16, Springer, New York, 1989. [10] , An “infinite fern” in the universal deformation space of Galois representations, Collect. Math. 48 (1997), 155–193. [11] J. Silverman, Arithmetic of elliptic curves, Springer–Verlag, New York, 1986. [12] T. Weston, An overview of a theorem of Flach, appendix to Deformations of Galois represen- tations by F.Q. Gouvea in Arithmetic , American Mathematical Society, 2001. [13] , Unobstructed modular deformation problems, American J. Math 126 (2004), 1237– 1252.

(Chantal David) Department of Mathematics and Statistics, Concordia University, Montreal, QC

(Tom Weston) Department of Mathematics and Statistics, University of Massachusetts Amherst, MA E-mail address, Chantal David: [email protected] E-mail address, Tom Weston: [email protected]